Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Cannot remove SCORPION SAVER/ADPEAK
Message
<blockquote data-quote="hunzeker" data-source="post: 146701" data-attributes="member: 15154"><p>Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-12-2013 02</p><p>Ran by Folders (administrator) on WIN7 on 03-12-2013 22:58:40</p><p>Running from C:\Users\Folders\Downloads\Programs</p><p>Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)</p><p>Internet Explorer Version 11</p><p>Boot Mode: Normal</p><p></p><p>==================== Processes (Whitelisted) =================</p><p></p><p>(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe</p><p>(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe</p><p>(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe</p><p>(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe</p><p>(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe</p><p>(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe</p><p>(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe</p><p>(Hauppauge Computer Works, Inc) C:\Program Files (x86)\WinTV\Extend\WinTVExtender.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe</p><p>(Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe</p><p>(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe</p><p>(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe</p><p>(Symantec Corporation) C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe</p><p>(Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe</p><p>(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe</p><p>(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe</p><p>(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe</p><p>(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe</p><p>(Hauppauge Computer Works, Inc.) C:\Program Files (x86)\WinTV\WinTV7\WinTVTray.exe</p><p>(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe</p><p>(Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\CaptureGenPCI.exe</p><p>(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe</p><p>(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe</p><p>(Symantec Corporation) C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe</p><p>(Hauppauge Computer Works, Inc.) C:\Program Files (x86)\WinTV\WinTV7\WinTVTray.exe</p><p>(Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe</p><p>(Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe</p><p>(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe</p><p>(Farbar) C:\Users\Folders\Downloads\Programs\FRST64_3.exe</p><p></p><p>==================== Registry (Whitelisted) ==================</p><p></p><p>HKCU\...\Run: [Plex Media Server] - C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [4238984 2013-10-26] (Plex, Inc.)</p><p>HKCU\...\Run: [IDMan] - C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3825232 2013-11-08] (Tonec Inc.)</p><p>HKCU\...\Run: [GoogleChromeAutoLaunch_4D58BC9D6CE41938B37776A7615543AA] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [863184 2013-11-14] (Google Inc.)</p><p>HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)</p><p>HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-11-11] (AVAST Software)</p><p>HKLM-x32\...\Run: [Qwest Personal Digital Vault] - "C:\Program Files (x86)\CenturyLink Personal Digital Vault\QwestPersonalDigitalVault.exe" /m</p><p>HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1549120 2013-08-16] (IObit)</p><p>HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\setup\emupdate\8d25ed94-bb32-4930-87d7-4c74dc4f01ce.exe [180184 2013-11-23] (AVAST Software)</p><p></p><p>==================== Internet (Whitelisted) ====================</p><p></p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp</p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us</p><p>HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/</p><p>BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)</p><p>BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)</p><p>BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)</p><p>BHO-x32: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)</p><p>Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)</p><p>Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)</p><p>Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.25</p><p></p><p>FireFox:</p><p>========</p><p>FF ProfilePath: C:\Users\Folders\AppData\Roaming\Mozilla\Firefox\Profiles\333rko86.default</p><p>FF NewTab: hxxp://www.google.com/firefox</p><p>FF DefaultSearchEngine: Bing</p><p>FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", "");</p><p>FF SelectedSearchEngine: Bing</p><p>FF Homepage: https://www.google.com/</p><p>FF NetworkProxy: "type", 0</p><p>FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()</p><p>FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)</p><p>FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)</p><p>FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)</p><p>FF Plugin-x32: @microsoft.com/GENUINE - disabled No File</p><p>FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)</p><p>FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)</p><p>FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)</p><p>FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)</p><p>FF SearchPlugin: C:\Users\Folders\AppData\Roaming\Mozilla\Firefox\Profiles\333rko86.default\searchplugins\yahoo_ff.xml</p><p>FF HKCU\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5</p><p>FF Extension: IDM CC - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5</p><p>FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5</p><p>FF Extension: IDM CC - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5</p><p>FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe</p><p></p><p>Chrome: </p><p>=======</p><p>CHR RestoreOnStartup: "https://mail.google.com/mail/u/0/?tab=wm#inbox"</p><p>CHR Extension: (Google Drive) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1</p><p>CHR Extension: (avast! Online Security) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_1</p><p>CHR Extension: (IDM Integration Module) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn\6.18.7_1</p><p>CHR Extension: ( "name":"Advanced SystemCare Surfing Protection",) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0</p><p>CHR Extension: (Google Wallet) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_1</p><p>CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx</p><p>CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx</p><p>CHR HKLM-x32\...\Chrome\Extension: [jonjajmpblmjkhjemkalbddhodlehkfg] - C:\Users\Folders\AppData\Local\CRE\jonjajmpblmjkhjemkalbddhodlehkfg.crx</p><p>CHR HKLM-x32\...\Chrome\Extension: [lipgolpfajiadodbcbljdpmbmbdmfcil] - C:\Users\Folders\AppData\Local\CRE\lipgolpfajiadodbcbljdpmbmbdmfcil.crx</p><p>CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx</p><p></p><p>==================== Services (Whitelisted) =================</p><p></p><p>R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [878368 2013-10-25] (IObit)</p><p>R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-11-11] (AVAST Software)</p><p>R2 Hauppauge WinTV Extender; C:\Program Files (x86)\WinTV\Extend\WinTVExtender.exe [59392 2013-08-07] (Hauppauge Computer Works, Inc)</p><p>R2 HauppaugeTVServer; C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe [582144 2013-08-31] (Hauppauge Computer Works)</p><p>R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [335168 2013-04-25] (IObit)</p><p>R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-11-15] (IObit)</p><p>R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)</p><p>S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)</p><p>R2 NZ; C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe [143856 2013-11-10] (Symantec Corporation)</p><p>R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1025408 2013-10-18] (Enigma Software Group USA, LLC.)</p><p>S2 AdpeakProxy; C:\Program Files\ScorpionSaver Services\AdpeakProxy.exe [x]</p><p></p><p>==================== Drivers (Whitelisted) ====================</p><p></p><p>R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-11-11] (AVAST Software)</p><p>R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-11-11] (AVAST Software)</p><p>R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-11-11] (AVAST Software)</p><p>R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-11-11] ()</p><p>R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-11-11] (AVAST Software)</p><p>R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-11-11] (AVAST Software)</p><p>R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-11-11] (AVAST Software)</p><p>R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-11-11] ()</p><p>R1 ccSet_NZ; C:\Windows\system32\drivers\NZx64\01000F0.00D\ccSetx64.sys [162392 2013-09-25] (Symantec Corporation)</p><p>S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()</p><p>S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2012-06-22] ()</p><p>R3 FETNDIS; C:\Windows\System32\DRIVERS\fet6x64.sys [47872 2009-06-10] (VIA Technologies, Inc. )</p><p>R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)</p><p>R3 hcw18bda; C:\Windows\System32\drivers\hcw18bda.sys [912896 2010-09-19] (Hauppauge Computer Works, Inc)</p><p>R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)</p><p>R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34336 2013-03-26] (IObit.com)</p><p>S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-13] (Brother Industries Ltd.)</p><p>R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] ()</p><p>R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-03-26] (IObit.com)</p><p></p><p>==================== NetSvcs (Whitelisted) ===================</p><p></p><p></p><p>==================== One Month Created Files and Folders ========</p><p></p><p>2013-12-03 22:31 - 2013-12-03 22:31 - 00000000 ____D C:\FRST</p><p>2013-12-03 22:22 - 2013-12-03 22:22 - 00000112 _____ C:\Windows\setupact.log</p><p>2013-12-03 22:22 - 2013-12-03 22:22 - 00000000 _____ C:\Windows\setuperr.log</p><p>2013-12-03 19:30 - 2013-12-03 19:30 - 00001098 _____ C:\Users\Public\Desktop\WinTV 7.lnk</p><p>2013-12-03 19:29 - 2013-12-03 19:29 - 00000000 ____D C:\Program Files (x86)\InstallShield Installation Information</p><p>2013-12-03 19:19 - 2013-12-03 19:19 - 00002679 _____ C:\Users\Folders\Desktop\Panorama.lnk</p><p>2013-12-03 19:18 - 2013-12-03 19:18 - 00000000 ____D C:\Program Files\Microsoft Research</p><p>2013-12-03 17:59 - 2013-12-03 17:59 - 00000000 _____ C:\asc_rdflag</p><p>2013-12-02 14:24 - 2013-12-02 14:17 - 00012712 _____ C:\Users\Folders\Documents\computer rebuild.odt</p><p>2013-12-02 12:26 - 2013-12-03 22:24 - 00000000 ____D C:\ProgramData\boost_interprocess</p><p>2013-12-02 09:23 - 2013-12-02 09:23 - 00000441 _____ C:\sh4_service.log</p><p>2013-12-02 09:18 - 2013-10-18 15:01 - 00285747 _____ C:\shldr</p><p>2013-12-02 09:18 - 2013-10-18 15:01 - 00008192 _____ C:\shldr.mbr</p><p>2013-12-02 01:22 - 2013-12-02 01:22 - 00002836 _____ C:\spyhunter.log</p><p>2013-12-01 14:41 - 2013-12-01 14:41 - 00000000 ____D C:\Users\Folders\Documents\WonderFox Soft</p><p>2013-12-01 14:02 - 2013-12-01 14:02 - 00000000 ____D C:\ProgramData\McAfee</p><p>2013-12-01 13:59 - 2013-12-01 14:14 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Software Informer</p><p>2013-12-01 13:58 - 2013-12-01 14:41 - 00001311 _____ C:\Users\UpdatusUser\Desktop\HD Video Converter Factory Pro.lnk</p><p>2013-12-01 13:58 - 2013-12-01 14:41 - 00001311 _____ C:\Users\Folders\Desktop\HD Converter.lnk</p><p>2013-12-01 13:58 - 2013-12-01 13:58 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WonderFox Soft</p><p>2013-12-01 13:58 - 2013-12-01 13:58 - 00000000 ____D C:\Program Files (x86)\WonderFox Soft</p><p>2013-12-01 13:18 - 2013-12-01 13:18 - 00013625 _____ C:\Users\Folders\Documents\Humana Dental Cancellation.odt</p><p>2013-11-28 16:59 - 2013-11-28 16:59 - 00000000 ____D C:\ProgramData\Kaspersky Lab</p><p>2013-11-28 14:36 - 2013-12-02 01:22 - 00000000 ____D C:\Program Files\ScorpionSaver Services</p><p>2013-11-28 12:11 - 2013-11-28 12:11 - 00000000 ____D C:\Users\Folders\AppData\Roaming\IDM2</p><p>2013-11-28 11:34 - 2013-11-28 11:35 - 00000000 ____D C:\0f4b1c2beb7b6dabc8ddb5daad65d67a</p><p>2013-11-27 20:18 - 2013-11-27 20:18 - 00001170 _____ C:\Users\Public\Desktop\RegHunter.lnk</p><p>2013-11-27 16:08 - 2013-11-27 16:08 - 00000000 ____D C:\b1e34f6098ca96049f4c</p><p>2013-11-27 16:06 - 2013-11-27 16:08 - 00000000 ____D C:\4d3d87bbdec4022af663ac6a6c75</p><p>2013-11-27 16:04 - 2013-11-27 16:06 - 00000000 ____D C:\f287f11a16765c212c1b6c</p><p>2013-11-27 16:01 - 2013-11-27 16:04 - 00000000 ____D C:\e407f43d348aefaebea4b46177</p><p>2013-11-27 16:00 - 2013-11-27 16:01 - 00000000 ____D C:\5733db8184d72843ca1e49ed71b62fc1</p><p>2013-11-27 15:59 - 2013-11-27 16:00 - 00000000 ____D C:\31b674d54c6afb206866</p><p>2013-11-27 14:49 - 2013-11-27 14:49 - 25444684 _____ C:\Users\Folders\Documents\ROKU QWEST PASSWORDS.tif</p><p>2013-11-27 13:29 - 2013-11-27 13:29 - 00002269 _____ C:\Users\Folders\Desktop\SpyHunter.lnk</p><p>2013-11-27 13:29 - 2013-11-27 13:29 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter</p><p>2013-11-27 13:29 - 2013-11-27 13:29 - 00000000 ____D C:\sh4ldr</p><p>2013-11-27 13:08 - 2012-06-22 11:01 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys</p><p>2013-11-26 20:53 - 2013-11-26 20:54 - 00000000 ____D C:\7b324cffb58ae272b47de342</p><p>2013-11-26 18:44 - 2013-11-26 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)</p><p>2013-11-26 16:43 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{4ABD4A0C-3760-4DC6-95A6-55950476D16D}</p><p>2013-11-26 16:43 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{19E56317-F4BA-41D1-A550-DB17CACF91B9}</p><p>2013-11-26 16:38 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{25DCCD1F-6B78-4178-A1D0-BBB60061D347}</p><p>2013-11-26 16:37 - 2013-11-26 18:38 - 00047064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys</p><p>2013-11-26 15:20 - 2013-11-28 18:34 - 00002017 _____ C:\Users\Public\Desktop\Avast.lnk</p><p>2013-11-26 13:58 - 2013-12-03 19:30 - 00000000 ____D C:\Users\Public\WinTV</p><p>2013-11-26 13:58 - 2013-12-03 19:29 - 00000000 ____D C:\Program Files (x86)\WinTV</p><p>2013-11-26 13:58 - 2013-11-28 10:20 - 00000000 ____D C:\ProgramData\Hauppauge</p><p>2013-11-26 13:53 - 2013-12-01 19:02 - 00774248 _____ C:\Windows\SysWOW64\PerfStringBackup.INI</p><p>2013-11-26 13:48 - 2013-12-03 19:28 - 00000000 ____D C:\Hauppauge</p><p>2013-11-26 12:45 - 2013-11-28 12:12 - 00002778 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC</p><p>2013-11-25 23:28 - 2013-11-25 23:28 - 00000000 ____D C:\_OTL</p><p>2013-11-25 22:58 - 2013-11-25 22:58 - 00000000 ____D C:\Windows\Tasks\TaskDisabled</p><p>2013-11-23 15:11 - 2013-11-23 15:11 - 00000000 _____ C:\autoexec.bat</p><p>2013-11-23 15:10 - 2013-11-27 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group</p><p>2013-11-22 16:51 - 2013-12-03 19:30 - 00000401 _____ C:\Windows\ODBCINST.INI</p><p>2013-11-22 16:51 - 2013-12-03 19:30 - 00000135 _____ C:\Windows\ODBC.INI</p><p>2013-11-22 16:51 - 2013-12-03 19:29 - 00037639 _____ C:\Windows\Irremote.ini</p><p>2013-11-22 16:51 - 2013-12-03 19:29 - 00002767 _____ C:\Windows\HCWPNP.INI</p><p>2013-11-22 16:51 - 2013-05-03 13:37 - 00118840 _____ (Hauppauge Computer Works, Inc.) C:\Windows\SysWOW64\hcwi2c32.dll</p><p>2013-11-22 16:51 - 2012-06-14 20:30 - 00323640 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwpnp32.dll</p><p>2013-11-22 16:51 - 2009-08-12 10:37 - 00038672 _____ (PCTV Systems S.à r.l.) C:\Windows\SysWOW64\pcleUtil.dll</p><p>2013-11-22 16:51 - 2009-02-16 23:09 - 00831554 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwtvwnd.dll</p><p>2013-11-22 16:51 - 2009-01-28 10:52 - 00142337 _____ C:\Windows\SysWOW64\Wait.exe</p><p>2013-11-22 16:51 - 2008-06-30 10:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll</p><p>2013-11-22 16:51 - 2008-06-30 10:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll</p><p>2013-11-22 16:51 - 2006-10-10 18:47 - 00036921 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwutl32.dll</p><p>2013-11-22 16:48 - 2010-09-19 23:28 - 00912896 _____ (Hauppauge Computer Works, Inc) C:\Windows\system32\Drivers\hcw18bda.sys</p><p>2013-11-22 16:48 - 2010-09-19 23:28 - 00139264 _____ (Hauppauge Computer Works) C:\Windows\system32\hcw18prop.ax</p><p>2013-11-22 16:48 - 2010-09-19 23:28 - 00117248 _____ (Hauppauge Computer Works, Inc.) C:\Windows\system32\hcw18CCv.ax</p><p>2013-11-22 12:32 - 2013-11-22 12:42 - 00000000 ____D C:\ProgramData\HitmanPro</p><p>2013-11-22 10:51 - 2013-11-22 10:51 - 00000000 ____D C:\Windows\ERUNT</p><p>2013-11-22 10:39 - 2013-12-02 12:22 - 00000000 ____D C:\AdwCleaner</p><p>2013-11-22 10:07 - 2013-11-22 10:07 - 00001242 _____ C:\Users\Folders\Desktop\Uninstaller.lnk</p><p>2013-11-21 21:43 - 2013-11-21 21:43 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp</p><p>2013-11-21 21:43 - 2013-11-21 21:43 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp</p><p>2013-11-21 20:56 - 2013-11-24 18:45 - 00003260 _____ C:\Windows\System32\Tasks\{AF3227B2-DADD-4423-B0DD-97A8C5037367}</p><p>2013-11-21 20:55 - 2013-11-22 10:06 - 00000000 ____D C:\Program Files (x86)\VS Revo Group</p><p>2013-11-21 20:22 - 2013-12-01 14:02 - 00000000 ____D C:\Users\Folders\AppData\Local\Adobe</p><p>2013-11-21 19:29 - 2013-11-21 19:29 - 00000000 ____D C:\Users\Folders\AppData\Roaming\eCyber</p><p>2013-11-21 14:10 - 2013-11-21 14:11 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Real</p><p>2013-11-21 14:08 - 2013-11-21 14:11 - 00000000 ____D C:\ProgramData\Real</p><p>2013-11-20 21:03 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Default\AppData\Roaming\Genie9</p><p>2013-11-20 21:03 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Genie9</p><p>2013-11-20 18:16 - 2013-11-20 18:17 - 00047270 _____ C:\Users\Folders\Documents\GENIE 9 STORAGE LICENSE.odt</p><p>2013-11-20 17:58 - 2013-11-28 18:29 - 00000000 ___RD C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp</p><p>2013-11-20 17:57 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Genie9</p><p>2013-11-19 19:02 - 2013-12-03 22:23 - 00000000 ___RD C:\Users\Folders\Google Drive</p><p>2013-11-19 19:02 - 2013-11-19 19:02 - 00001705 _____ C:\Users\Folders\Desktop\Drive.lnk</p><p>2013-11-19 14:36 - 2013-11-21 20:43 - 00000000 ____D C:\Program Files (x86)\SoftMaker Viewer</p><p>2013-11-19 14:36 - 2013-11-19 14:36 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftMaker Viewer</p><p>2013-11-19 14:36 - 2009-06-05 03:33 - 00068640 _____ C:\Windows\unTMV.exe</p><p>2013-11-19 14:36 - 2009-03-23 00:41 - 00148473 _____ C:\Users\Folders\Documents\TextMaker Viewer.tmd</p><p>2013-11-18 19:25 - 2013-11-24 18:45 - 00003172 _____ C:\Windows\System32\Tasks\SmartDefrag_Startup</p><p>2013-11-18 19:25 - 2013-11-24 18:45 - 00003170 _____ C:\Windows\System32\Tasks\SmartDefragUpdate</p><p>2013-11-18 19:25 - 2013-05-22 18:49 - 00032600 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe</p><p>2013-11-17 14:51 - 2013-11-17 14:51 - 00000000 ____D C:\Program Files (x86)\MSECache</p><p>2013-11-17 14:51 - 2013-11-17 14:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Office</p><p>2013-11-17 14:36 - 2013-11-19 14:31 - 00000000 ____D C:\Users\Folders\Documents\AA QWEST</p><p>2013-11-17 14:36 - 2013-11-19 14:30 - 00000000 ____D C:\Users\Folders\Documents\PASSWORDS</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\WAB</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\VERIZON</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\TAXES</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\RES REF</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\PROP TAX</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\OLD EMAILS</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\OLD APT</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\LICENSES</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\EMAILS</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\EMAIL ADDRESSES</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\DOGS</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\DISPUTES</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\Booknizer</p><p>2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\APARTMENTS</p><p>2013-11-17 14:36 - 2012-09-04 11:24 - 00367716 _____ C:\Users\Folders\Documents\IDMSettings.txt</p><p>2013-11-17 14:36 - 2011-10-03 13:01 - 00004901 _____ C:\Users\Folders\Documents\MICROSOFT PHONES.odt</p><p>2013-11-17 14:36 - 2011-09-07 16:24 - 00000152 _____ C:\Users\Folders\Documents\Network Security Settings.txt</p><p>2013-11-17 14:36 - 2011-08-03 22:15 - 00012754 _____ C:\Users\Folders\Documents\TEEN SUBSCRIBE.odt</p><p>2013-11-17 14:36 - 2011-07-27 18:06 - 00009354 _____ C:\Users\Folders\Documents\internet probs.odt</p><p>2013-11-17 14:36 - 2011-07-23 11:15 - 01740859 _____ C:\Users\Folders\Documents\CLEAR ONE & MEDICARE.odt</p><p>2013-11-17 14:36 - 2011-07-20 17:09 - 00018727 _____ C:\Users\Folders\Documents\PRESBYTERIAN THANK YOU.odt</p><p>2013-11-17 14:36 - 2011-07-19 11:12 - 00026513 _____ C:\Users\Folders\Documents\PROPERTY TAX APPEAL.odt</p><p>2013-11-17 14:36 - 2011-07-17 13:07 - 00019682 _____ C:\Users\Folders\Documents\HOME DEPOT COMPLAINT.odt</p><p>2013-11-17 14:36 - 2011-06-23 13:32 - 00014669 _____ C:\Users\Folders\Documents\Speeding Ticket.odt</p><p>2013-11-17 14:36 - 2011-06-23 13:32 - 00014669 _____ C:\Users\Folders\Documents\OSP TKT.odt</p><p>2013-11-17 14:36 - 2011-06-09 15:20 - 00019794 _____ C:\Users\Folders\Documents\House Paint Request.odt</p><p>2013-11-17 14:36 - 2011-06-09 15:20 - 00019794 _____ C:\Users\Folders\Documents\HOUSE PAINT JOB.odt</p><p>2013-11-17 14:36 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\Barking Dog Response.odt</p><p>2013-11-17 14:36 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\Barking Dog 3.odt</p><p>2013-11-17 14:36 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\Barking Dogs Neighbors.odt</p><p>2013-11-17 14:36 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\Barking Dog 1.odt</p><p>2013-11-17 14:36 - 2011-05-09 17:14 - 00020936 _____ C:\Users\Folders\Documents\ONPOINT CANCELLED.odt</p><p>2013-11-17 14:36 - 2011-05-09 17:14 - 00020936 _____ C:\Users\Folders\Documents\OnPoint Cancel.odt</p><p>2013-11-17 14:36 - 2011-05-05 09:31 - 00009927 _____ C:\Users\Folders\Documents\Nettalk.odt</p><p>2013-11-17 14:36 - 2011-04-24 12:02 - 00016529 _____ C:\Users\Folders\Documents\Faucets.odt</p><p>2013-11-17 14:36 - 2011-04-23 11:44 - 00014948 _____ C:\Users\Folders\Documents\Equifax Request.odt</p><p>2013-11-17 14:36 - 2011-04-23 11:44 - 00014948 _____ C:\Users\Folders\Documents\EQUIFAX COMPLAINT.odt</p><p>2013-11-17 14:36 - 2011-04-16 12:10 - 00009926 _____ C:\Users\Folders\Documents\PHONE ALAN.odt</p><p>2013-11-17 14:36 - 2011-04-10 14:58 - 00008913 _____ C:\Users\Folders\Documents\PICTUREMERGE.odt</p><p>2013-11-17 14:36 - 2011-04-10 14:58 - 00008913 _____ C:\Users\Folders\Documents\PASSWORD PICTUREMERGE.odt</p><p>2013-11-17 14:36 - 2011-04-04 09:52 - 00010100 _____ C:\Users\Folders\Documents\PASSWORD MS CLEANER.odt</p><p>2013-11-17 14:36 - 2011-04-04 09:52 - 00010100 _____ C:\Users\Folders\Documents\MS Cleaner New.odt</p><p>2013-11-17 14:36 - 2011-02-24 21:52 - 00018206 _____ C:\Users\Folders\Documents\MAIL PROBLEM.odt</p><p>2013-11-17 14:36 - 2011-02-24 21:52 - 00018206 _____ C:\Users\Folders\Documents\EMAIL PROBLEM.odt</p><p>2013-11-17 14:36 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\BARKING DOGS.odt</p><p>2013-11-17 14:36 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\Barking Dog Law.odt</p><p>2013-11-17 14:36 - 2011-02-09 10:48 - 00014952 _____ C:\Users\Folders\Documents\PASSWORDS 2011.odt</p><p>2013-11-17 14:36 - 2011-02-09 10:48 - 00014952 _____ C:\Users\Folders\Documents\A PSWRDS.odt</p><p>2013-11-17 14:36 - 2011-02-08 15:28 - 01391878 _____ C:\Users\Folders\Documents\Untitled 1.odt</p><p>2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\PASSWORD HCTC.odt</p><p>2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\HCTC PASSWORD.odt</p><p>2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\HCTC ACCOUNT.odt</p><p>2013-11-17 14:36 - 2011-02-05 14:06 - 00009133 _____ C:\Users\Folders\Documents\LOCO F7 GRILL PAINT.odt</p><p>2013-11-17 14:36 - 2011-02-05 14:06 - 00009133 _____ C:\Users\Folders\Documents\F7 GRILL PAINT.odt</p><p>2013-11-17 14:36 - 2011-02-05 14:05 - 00009332 _____ C:\Users\Folders\Documents\PASSWORD WIN7.odt</p><p>2013-11-17 14:36 - 2011-02-05 13:57 - 00010733 _____ C:\Users\Folders\Documents\PASSWORD MS COMPUTER.odt</p><p>2013-11-17 14:36 - 2011-01-17 14:02 - 00000145 _____ C:\Users\Folders\Documents\indexfile.txt</p><p>2013-11-17 14:36 - 2007-12-23 15:31 - 00016384 _____ C:\Users\Folders\Documents\CAM FORMAT.wps</p><p>2013-11-17 14:36 - 2007-11-01 13:14 - 00013312 _____ C:\Users\Folders\Documents\BEND APT 5.wps</p><p>2013-11-17 14:36 - 2007-11-01 13:04 - 00011776 _____ C:\Users\Folders\Documents\BEND APT 4.wps</p><p>2013-11-17 14:36 - 2007-11-01 12:37 - 00012800 _____ C:\Users\Folders\Documents\BEND APT 3.wps</p><p>2013-11-17 14:32 - 2013-11-21 20:43 - 00000000 ____D C:\Users\Folders\Documents\SoftMaker</p><p>2013-11-17 14:32 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\LICENSES PASSWORDS</p><p>2013-11-17 14:32 - 2013-11-17 14:32 - 00000000 ____D C:\Users\Folders\Documents\BEND APT</p><p>2013-11-17 14:32 - 2012-02-07 19:54 - 00004534 _____ C:\Users\Folders\Documents\NETTALK CONTACT.odt</p><p>2013-11-17 14:32 - 2011-11-18 13:52 - 00004854 _____ C:\Users\Folders\Documents\ALAN DOUGLASS.odt</p><p>2013-11-17 14:32 - 2011-09-07 16:24 - 00000152 _____ C:\Users\Folders\Documents\NETWORK PASSWORD.txt</p><p>2013-11-17 14:32 - 2011-07-19 11:32 - 00015307 _____ C:\Users\Folders\Documents\PROPERTY TAX WHISNET.odt</p><p>2013-11-17 14:32 - 2011-07-19 11:12 - 00026513 _____ C:\Users\Folders\Documents\PROP TAX DEFERRAL.odt</p><p>2013-11-17 14:32 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\BARK DOG 3.odt</p><p>2013-11-17 14:32 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\BARK DOG 1.odt</p><p>2013-11-17 14:32 - 2011-04-16 12:10 - 00009926 _____ C:\Users\Folders\Documents\PHONES ALAN.odt</p><p>2013-11-17 14:32 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\BARK LAW.odt</p><p>2013-11-17 14:32 - 2011-02-05 14:08 - 00010374 _____ C:\Users\Folders\Documents\HOUSE PAINTS.odt</p><p>2013-11-17 14:32 - 2011-02-05 14:03 - 00011368 _____ C:\Users\Folders\Documents\VERIZON MODEM.odt</p><p>2013-11-17 14:32 - 2011-02-05 13:54 - 00010142 _____ C:\Users\Folders\Documents\PHONES MICROSOFT.odt</p><p>2013-11-17 14:32 - 2011-01-14 16:12 - 00009216 _____ C:\Users\Folders\Documents\Untitled Document.wps</p><p>2013-11-17 14:32 - 2009-01-29 14:24 - 00010752 _____ C:\Users\Folders\Documents\RES 3.wps</p><p>2013-11-17 14:32 - 2009-01-21 13:05 - 00001769 _____ C:\Users\Folders\Documents\REF ATT.txt</p><p>2013-11-17 14:32 - 2009-01-14 16:20 - 00012800 _____ C:\Users\Folders\Documents\RES 1.wps</p><p>2013-11-17 14:32 - 2008-08-13 18:53 - 00010240 _____ C:\Users\Folders\Documents\RES 4.wps</p><p>2013-11-17 13:32 - 2013-11-17 13:38 - 00000195 _____ C:\Users\Folders\Desktop\Calendar.url</p><p>2013-11-16 15:23 - 2013-11-16 19:25 - 00000000 ____D C:\Program Files\Media Preview</p><p>2013-11-16 15:23 - 2013-11-16 15:23 - 00000000 ____D C:\Program Files (x86)\Media Preview</p><p>2013-11-16 12:59 - 2013-11-24 16:20 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Foxit Software</p><p>2013-11-16 12:59 - 2013-11-16 12:59 - 00000000 ____D C:\Program Files (x86)\Foxit Software</p><p>2013-11-16 12:52 - 2013-11-16 12:53 - 00009555 _____ C:\Users\Folders\Documents\A ISA.odt</p><p>2013-11-16 12:41 - 2013-11-16 12:47 - 03911164 _____ C:\Users\Folders\Documents\CENTURYLINK ACTIONTEC.tif</p><p>2013-11-16 12:32 - 2013-11-16 14:06 - 00014336 ____H C:\Users\Folders\Documents\photothumb.db</p><p>2013-11-15 21:01 - 2013-11-17 13:45 - 00001042 _____ C:\Users\Folders\Desktop\PhotoScape.lnk</p><p>2013-11-15 21:01 - 2013-11-15 21:03 - 00000000 ____D C:\Users\Folders\AppData\Roaming\PhotoScape</p><p>2013-11-15 21:01 - 2013-11-15 21:02 - 00000000 ____D C:\Program Files (x86)\PhotoScape</p><p>2013-11-15 18:36 - 2013-11-15 18:36 - 00000912 _____ C:\Windows\SysWOW64\MY_STYLE.STY</p><p>2013-11-15 18:29 - 2013-12-01 16:10 - 00000000 ____D C:\Users\Folders\AppData\Local\CrashDumps</p><p>2013-11-15 14:10 - 2013-11-15 14:10 - 54390784 _____ C:\Windows\system32\config\SOFTWARE.iobit</p><p>2013-11-15 14:10 - 2013-11-15 14:10 - 45219840 _____ C:\Windows\system32\config\COMPONENTS.iobit</p><p>2013-11-15 14:10 - 2013-11-15 14:10 - 00913408 _____ C:\Windows\system32\config\DEFAULT.iobit</p><p>2013-11-15 14:10 - 2013-11-15 14:10 - 00061440 _____ C:\Windows\system32\config\SAM.iobit</p><p>2013-11-15 14:10 - 2013-11-15 14:10 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit</p><p>2013-11-15 13:29 - 2013-11-15 13:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}</p><p>2013-11-15 13:01 - 2013-11-15 13:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox</p><p>2013-11-14 21:35 - 2013-11-16 12:14 - 00000000 ____D C:\Users\Folders\AppData\Local\Qwest</p><p>2013-11-14 15:05 - 2013-11-14 15:05 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0</p><p>2013-11-14 13:23 - 2013-04-16 23:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll</p><p>2013-11-14 13:23 - 2013-04-16 22:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll</p><p>2013-11-14 13:22 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll</p><p>2013-11-14 13:22 - 2013-04-02 14:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll</p><p>2013-11-13 18:49 - 2013-10-16 10:18 - 00439296 _____ (Adpeak, Inc.) C:\Windows\system32\AdpeakProxy64.dll</p><p>2013-11-13 18:49 - 2013-10-16 10:18 - 00338944 _____ (Adpeak, Inc.) C:\Windows\SysWOW64\AdpeakProxy.dll</p><p>2013-11-13 18:11 - 2013-12-02 14:32 - 00000000 ____D C:\Users\Folders\AppData\Roaming\vlc</p><p>2013-11-13 18:09 - 2013-11-13 18:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN</p><p>2013-11-13 17:34 - 2013-11-13 17:34 - 00002219 _____ C:\Users\Public\Desktop\Earth.lnk</p><p>2013-11-13 17:26 - 2013-11-17 13:42 - 00001212 _____ C:\Users\Folders\Desktop\Creator.lnk</p><p>2013-11-13 17:26 - 2013-05-27 17:48 - 01005928 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll</p><p>2013-11-13 17:26 - 2011-02-17 14:37 - 00974848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll</p><p>2013-11-13 17:26 - 2011-02-17 14:37 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll</p><p>2013-11-13 17:26 - 2011-02-17 14:37 - 00344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll</p><p>2013-11-13 17:21 - 2013-11-13 17:21 - 00001755 _____ C:\Users\Folders\Desktop\Yard.lnk</p><p>2013-11-13 17:20 - 2013-11-15 20:12 - 00000000 ____D C:\Users\Folders\AppData\Roaming\AVS4YOU</p><p>2013-11-13 17:20 - 2013-11-13 17:26 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU</p><p>2013-11-13 17:19 - 2013-11-13 17:21 - 00001248 _____ C:\Users\Folders\Desktop\Converter.lnk</p><p>2013-11-13 17:19 - 2013-11-13 17:21 - 00001212 _____ C:\Users\Folders\Desktop\Editor.lnk</p><p>2013-11-13 17:19 - 2013-11-13 17:20 - 00000000 ____D C:\ProgramData\AVS4YOU</p><p>2013-11-13 17:18 - 2013-11-13 17:26 - 00000000 ____D C:\Program Files (x86)\AVS4YOU</p><p>2013-11-13 17:18 - 2011-06-23 13:26 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll</p><p>2013-11-13 17:18 - 2011-06-23 13:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll</p><p>2013-11-13 17:08 - 2013-12-03 22:31 - 00000000 ____D C:\Users\Folders\AppData\Roaming\IDM</p><p>2013-11-13 17:08 - 2013-12-03 19:39 - 00000000 ____D C:\Users\Folders\Downloads\Video</p><p>2013-11-13 17:08 - 2013-12-03 19:39 - 00000000 ____D C:\Users\Folders\Downloads\Compressed</p><p>2013-11-13 17:08 - 2013-12-03 17:58 - 00000000 ____D C:\Users\Folders\AppData\Roaming\DMCache</p><p>2013-11-13 17:08 - 2013-11-21 20:43 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager</p><p>2013-11-13 17:08 - 2013-11-21 20:43 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager</p><p>2013-11-13 17:08 - 2013-11-17 13:44 - 00001020 _____ C:\Users\Folders\Desktop\Downloader.lnk</p><p>2013-11-13 17:08 - 2013-11-13 17:08 - 00000000 ____D C:\ProgramData\IDM</p><p>2013-11-13 16:52 - 2013-11-17 13:43 - 00001181 _____ C:\Users\Public\Desktop\Defrag.lnk</p><p>2013-11-13 16:52 - 2013-05-22 18:49 - 00017720 _____ C:\Windows\system32\Drivers\SmartDefragDriver.sys</p><p>2013-11-13 16:24 - 2013-11-16 12:15 - 00013218 _____ C:\Users\Folders\Documents\CENTURYLINK VAULT.odt</p><p>2013-11-13 16:18 - 2013-11-13 16:18 - 00000000 ____D C:\Users\Folders\AppData\Roaming\OpenOffice</p><p>2013-11-13 16:15 - 2013-11-17 13:44 - 00002293 _____ C:\Users\Public\Desktop\Vault.lnk</p><p>2013-11-13 16:14 - 2013-11-13 16:14 - 00000000 ____D C:\Program Files (x86)\CenturyLink Personal Digital Vault</p><p>2013-11-13 14:37 - 2013-11-20 14:59 - 00000000 ____D C:\Users\Folders\Norton Zone</p><p>2013-11-13 14:37 - 2013-11-15 09:59 - 00000000 ____D C:\Windows\System32\Tasks\Norton Zone</p><p>2013-11-13 14:36 - 2013-11-21 20:43 - 00000000 ____D C:\ProgramData\Norton</p><p>2013-11-13 14:36 - 2013-11-15 09:52 - 00000000 ____D C:\Windows\system32\Drivers\NZx64</p><p>2013-11-13 14:36 - 2013-11-13 14:36 - 00000000 ____D C:\Program Files (x86)\Norton Zone</p><p>2013-11-13 14:33 - 2013-11-13 14:33 - 00000000 ____D C:\Windows\Downloaded Installations</p><p>2013-11-13 14:24 - 2013-11-15 16:45 - 00000000 ____D C:\Users\Folders\AppData\Local\Plex</p><p>2013-11-13 14:23 - 2013-11-13 14:23 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plex Media Center</p><p>2013-11-13 14:23 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll</p><p>2013-11-13 14:23 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll</p><p>2013-11-13 13:40 - 2013-11-15 17:29 - 00000000 ____D C:\Users\Folders\AppData\Local\Plex Media Server</p><p>2013-11-13 13:40 - 2013-11-13 13:40 - 00000000 ____D C:\Users\Folders\AppData\Local\Apple Computer</p><p>2013-11-13 13:39 - 2013-12-03 19:30 - 00000000 ____D C:\ProgramData\Package Cache</p><p>2013-11-13 13:39 - 2013-11-13 14:22 - 00000000 ____D C:\Program Files (x86)\Plex</p><p>2013-11-13 12:40 - 2013-11-13 12:40 - 00000000 __SHD C:\found.000</p><p>2013-11-13 11:43 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe</p><p>2013-11-13 11:39 - 2013-11-13 11:39 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll</p><p>2013-11-13 11:37 - 2013-10-01 18:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys</p><p>2013-11-13 11:37 - 2013-10-01 18:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe</p><p>2013-11-13 11:37 - 2013-10-01 18:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll</p><p>2013-11-13 11:37 - 2013-10-01 17:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll</p><p>2013-11-13 11:37 - 2013-10-01 17:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll</p><p>2013-11-13 11:37 - 2013-10-01 17:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll</p><p>2013-11-13 11:37 - 2013-10-01 17:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll</p><p>2013-11-13 11:37 - 2013-10-01 16:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll</p><p>2013-11-13 11:37 - 2013-10-01 16:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll</p><p>2013-11-13 11:37 - 2013-10-01 16:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll</p><p>2013-11-13 11:37 - 2013-10-01 16:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe</p><p>2013-11-13 11:37 - 2013-10-01 16:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe</p><p>2013-11-13 11:37 - 2013-10-01 15:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll</p><p>2013-11-13 11:37 - 2013-10-01 15:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe</p><p>2013-11-13 11:37 - 2013-10-01 15:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll</p><p>2013-11-13 11:37 - 2013-10-01 14:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe</p><p>2013-11-13 11:37 - 2013-10-01 12:57 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll</p><p>2013-11-13 11:37 - 2013-10-01 12:55 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll</p><p>2013-11-13 11:28 - 2013-01-13 11:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll</p><p>2013-11-13 11:28 - 2013-01-13 11:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll</p><p>2013-11-13 11:28 - 2013-01-13 11:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll</p><p>2013-11-13 11:28 - 2013-01-03 22:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll</p><p>2013-11-13 11:28 - 2013-01-03 22:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 13:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll</p><p>2013-11-13 11:27 - 2013-01-13 12:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:51 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:37 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll</p><p>2013-11-13 11:27 - 2013-01-13 11:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll</p><p>2013-11-13 11:27 - 2013-01-13 10:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll</p><p>2013-11-13 11:27 - 2013-01-13 10:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll</p><p>2013-11-13 11:27 - 2013-01-13 10:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll</p><p>2013-11-13 11:27 - 2013-01-13 09:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll</p><p>2013-11-13 11:27 - 2013-01-13 09:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll</p><p>2013-11-13 11:22 - 2013-09-24 18:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll</p><p>2013-11-13 11:22 - 2013-09-24 17:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll</p><p>2013-11-12 23:55 - 2013-11-17 13:39 - 00002266 _____ C:\Users\Public\Desktop\Mail.lnk</p><p>2013-11-12 23:34 - 2013-12-03 18:00 - 57389056 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak</p><p>2013-11-12 23:34 - 2013-12-03 17:59 - 45219840 _____ C:\Windows\system32\config\COMPONENTS.iodefrag.bak</p><p>2013-11-12 23:34 - 2013-12-03 17:59 - 00946176 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak</p><p>2013-11-12 23:34 - 2013-12-03 17:59 - 00061440 _____ C:\Windows\system32\config\SAM.iodefrag.bak</p><p>2013-11-12 23:34 - 2013-12-03 17:59 - 00032768 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak</p><p>2013-11-12 23:15 - 2013-11-12 23:15 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Malwarebytes</p><p>2013-11-12 23:14 - 2013-11-17 13:41 - 00001184 _____ C:\Users\Public\Desktop\Malware.lnk</p><p>2013-11-12 23:14 - 2013-11-12 23:15 - 00001120 _____ C:\Users\Public\Desktop\Malbytes.lnk</p><p>2013-11-12 23:14 - 2013-11-12 23:14 - 00000000 ____D C:\ProgramData\Malwarebytes</p><p>2013-11-12 23:14 - 2013-11-12 23:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware</p><p>2013-11-12 23:14 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll</p><p>2013-11-12 20:06 - 2013-11-12 20:06 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll</p><p>2013-11-12 20:03 - 2013-11-12 20:03 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll</p><p>2013-11-12 20:03 - 2013-11-12 20:03 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll</p><p>2013-11-12 20:02 - 2013-11-12 20:02 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll</p><p>2013-11-12 20:02 - 2013-11-12 20:02 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll</p><p>2013-11-12 20:01 - 2013-11-12 20:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll</p><p>2013-11-12 20:00 - 2013-11-12 20:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL</p><p>2013-11-12 20:00 - 2013-11-12 20:00 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll</p><p>2013-11-12 20:00 - 2013-11-12 20:00 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll</p><p>2013-11-12 20:00 - 2013-11-12 20:00 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL</p><p>2013-11-12 20:00 - 2013-11-12 20:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll</p><p>2013-11-12 19:59 - 2013-11-12 19:59 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys</p><p>2013-11-12 19:58 - 2013-11-12 19:58 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll</p><p>2013-11-12 19:58 - 2013-11-12 19:58 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll</p><p>2013-11-12 19:58 - 2013-11-12 19:58 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys</p><p>2013-11-12 19:58 - 2013-11-12 19:58 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll</p><p>2013-11-12 19:58 - 2013-11-12 19:58 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll</p><p>2013-11-12 19:57 - 2013-11-12 19:57 - 00007680 _____ (Micros</p></blockquote><p></p>
[QUOTE="hunzeker, post: 146701, member: 15154"] Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-12-2013 02 Ran by Folders (administrator) on WIN7 on 03-12-2013 22:58:40 Running from C:\Users\Folders\Downloads\Programs Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe (Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (Hauppauge Computer Works, Inc) C:\Program Files (x86)\WinTV\Extend\WinTVExtender.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe (Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Symantec Corporation) C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\WinTV\WinTV7\WinTVTray.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Hauppauge Computer Works) C:\Program Files (x86)\WinTV\TVServer\CaptureGenPCI.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Symantec Corporation) C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe (Hauppauge Computer Works, Inc.) C:\Program Files (x86)\WinTV\WinTV7\WinTVTray.exe (Python Software Foundation) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Folders\Downloads\Programs\FRST64_3.exe ==================== Registry (Whitelisted) ================== HKCU\...\Run: [Plex Media Server] - C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe [4238984 2013-10-26] (Plex, Inc.) HKCU\...\Run: [IDMan] - C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3825232 2013-11-08] (Tonec Inc.) HKCU\...\Run: [GoogleChromeAutoLaunch_4D58BC9D6CE41938B37776A7615543AA] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [863184 2013-11-14] (Google Inc.) HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-11-11] (AVAST Software) HKLM-x32\...\Run: [Qwest Personal Digital Vault] - "C:\Program Files (x86)\CenturyLink Personal Digital Vault\QwestPersonalDigitalVault.exe" /m HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1549120 2013-08-16] (IObit) HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\setup\emupdate\8d25ed94-bb32-4930-87d7-4c74dc4f01ce.exe [180184 2013-11-23] (AVAST Software) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/ BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.) BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.25 FireFox: ======== FF ProfilePath: C:\Users\Folders\AppData\Roaming\Mozilla\Firefox\Profiles\333rko86.default FF NewTab: hxxp://www.google.com/firefox FF DefaultSearchEngine: Bing FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", ""); FF SelectedSearchEngine: Bing FF Homepage: https://www.google.com/ FF NetworkProxy: "type", 0 FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF SearchPlugin: C:\Users\Folders\AppData\Roaming\Mozilla\Firefox\Profiles\333rko86.default\searchplugins\yahoo_ff.xml FF HKCU\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5 FF Extension: IDM CC - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5 FF HKCU\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5 FF Extension: IDM CC - C:\Users\Folders\AppData\Roaming\IDM\idmmzcc5 FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe Chrome: ======= CHR RestoreOnStartup: "https://mail.google.com/mail/u/0/?tab=wm#inbox" CHR Extension: (Google Drive) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1 CHR Extension: (avast! Online Security) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_1 CHR Extension: (IDM Integration Module) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn\6.18.7_1 CHR Extension: ( "name":"Advanced SystemCare Surfing Protection",) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0 CHR Extension: (Google Wallet) - C:\Users\Folders\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_1 CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx CHR HKLM-x32\...\Chrome\Extension: [jonjajmpblmjkhjemkalbddhodlehkfg] - C:\Users\Folders\AppData\Local\CRE\jonjajmpblmjkhjemkalbddhodlehkfg.crx CHR HKLM-x32\...\Chrome\Extension: [lipgolpfajiadodbcbljdpmbmbdmfcil] - C:\Users\Folders\AppData\Local\CRE\lipgolpfajiadodbcbljdpmbmbdmfcil.crx CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx ==================== Services (Whitelisted) ================= R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [878368 2013-10-25] (IObit) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-11-11] (AVAST Software) R2 Hauppauge WinTV Extender; C:\Program Files (x86)\WinTV\Extend\WinTVExtender.exe [59392 2013-08-07] (Hauppauge Computer Works, Inc) R2 HauppaugeTVServer; C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe [582144 2013-08-31] (Hauppauge Computer Works) R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [335168 2013-04-25] (IObit) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-11-15] (IObit) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NZ; C:\Program Files (x86)\Norton Zone\Engine\1.0.15.13\NZ.exe [143856 2013-11-10] (Symantec Corporation) R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1025408 2013-10-18] (Enigma Software Group USA, LLC.) S2 AdpeakProxy; C:\Program Files\ScorpionSaver Services\AdpeakProxy.exe [x] ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-11-11] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-11-11] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-11-11] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-11-11] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-11-11] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-11-11] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-11-11] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-11-11] () R1 ccSet_NZ; C:\Windows\system32\drivers\NZx64\01000F0.00D\ccSetx64.sys [162392 2013-09-25] (Symantec Corporation) S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] () S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2012-06-22] () R3 FETNDIS; C:\Windows\System32\DRIVERS\fet6x64.sys [47872 2009-06-10] (VIA Technologies, Inc. ) R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit) R3 hcw18bda; C:\Windows\System32\drivers\hcw18bda.sys [912896 2010-09-19] (Hauppauge Computer Works, Inc) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34336 2013-03-26] (IObit.com) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-13] (Brother Industries Ltd.) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2013-05-22] () R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-03-26] (IObit.com) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-03 22:31 - 2013-12-03 22:31 - 00000000 ____D C:\FRST 2013-12-03 22:22 - 2013-12-03 22:22 - 00000112 _____ C:\Windows\setupact.log 2013-12-03 22:22 - 2013-12-03 22:22 - 00000000 _____ C:\Windows\setuperr.log 2013-12-03 19:30 - 2013-12-03 19:30 - 00001098 _____ C:\Users\Public\Desktop\WinTV 7.lnk 2013-12-03 19:29 - 2013-12-03 19:29 - 00000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2013-12-03 19:19 - 2013-12-03 19:19 - 00002679 _____ C:\Users\Folders\Desktop\Panorama.lnk 2013-12-03 19:18 - 2013-12-03 19:18 - 00000000 ____D C:\Program Files\Microsoft Research 2013-12-03 17:59 - 2013-12-03 17:59 - 00000000 _____ C:\asc_rdflag 2013-12-02 14:24 - 2013-12-02 14:17 - 00012712 _____ C:\Users\Folders\Documents\computer rebuild.odt 2013-12-02 12:26 - 2013-12-03 22:24 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-12-02 09:23 - 2013-12-02 09:23 - 00000441 _____ C:\sh4_service.log 2013-12-02 09:18 - 2013-10-18 15:01 - 00285747 _____ C:\shldr 2013-12-02 09:18 - 2013-10-18 15:01 - 00008192 _____ C:\shldr.mbr 2013-12-02 01:22 - 2013-12-02 01:22 - 00002836 _____ C:\spyhunter.log 2013-12-01 14:41 - 2013-12-01 14:41 - 00000000 ____D C:\Users\Folders\Documents\WonderFox Soft 2013-12-01 14:02 - 2013-12-01 14:02 - 00000000 ____D C:\ProgramData\McAfee 2013-12-01 13:59 - 2013-12-01 14:14 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Software Informer 2013-12-01 13:58 - 2013-12-01 14:41 - 00001311 _____ C:\Users\UpdatusUser\Desktop\HD Video Converter Factory Pro.lnk 2013-12-01 13:58 - 2013-12-01 14:41 - 00001311 _____ C:\Users\Folders\Desktop\HD Converter.lnk 2013-12-01 13:58 - 2013-12-01 13:58 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WonderFox Soft 2013-12-01 13:58 - 2013-12-01 13:58 - 00000000 ____D C:\Program Files (x86)\WonderFox Soft 2013-12-01 13:18 - 2013-12-01 13:18 - 00013625 _____ C:\Users\Folders\Documents\Humana Dental Cancellation.odt 2013-11-28 16:59 - 2013-11-28 16:59 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-11-28 14:36 - 2013-12-02 01:22 - 00000000 ____D C:\Program Files\ScorpionSaver Services 2013-11-28 12:11 - 2013-11-28 12:11 - 00000000 ____D C:\Users\Folders\AppData\Roaming\IDM2 2013-11-28 11:34 - 2013-11-28 11:35 - 00000000 ____D C:\0f4b1c2beb7b6dabc8ddb5daad65d67a 2013-11-27 20:18 - 2013-11-27 20:18 - 00001170 _____ C:\Users\Public\Desktop\RegHunter.lnk 2013-11-27 16:08 - 2013-11-27 16:08 - 00000000 ____D C:\b1e34f6098ca96049f4c 2013-11-27 16:06 - 2013-11-27 16:08 - 00000000 ____D C:\4d3d87bbdec4022af663ac6a6c75 2013-11-27 16:04 - 2013-11-27 16:06 - 00000000 ____D C:\f287f11a16765c212c1b6c 2013-11-27 16:01 - 2013-11-27 16:04 - 00000000 ____D C:\e407f43d348aefaebea4b46177 2013-11-27 16:00 - 2013-11-27 16:01 - 00000000 ____D C:\5733db8184d72843ca1e49ed71b62fc1 2013-11-27 15:59 - 2013-11-27 16:00 - 00000000 ____D C:\31b674d54c6afb206866 2013-11-27 14:49 - 2013-11-27 14:49 - 25444684 _____ C:\Users\Folders\Documents\ROKU QWEST PASSWORDS.tif 2013-11-27 13:29 - 2013-11-27 13:29 - 00002269 _____ C:\Users\Folders\Desktop\SpyHunter.lnk 2013-11-27 13:29 - 2013-11-27 13:29 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2013-11-27 13:29 - 2013-11-27 13:29 - 00000000 ____D C:\sh4ldr 2013-11-27 13:08 - 2012-06-22 11:01 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2013-11-26 20:53 - 2013-11-26 20:54 - 00000000 ____D C:\7b324cffb58ae272b47de342 2013-11-26 18:44 - 2013-11-26 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-11-26 16:43 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{4ABD4A0C-3760-4DC6-95A6-55950476D16D} 2013-11-26 16:43 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{19E56317-F4BA-41D1-A550-DB17CACF91B9} 2013-11-26 16:38 - 2013-11-28 12:12 - 00002940 _____ C:\Windows\System32\Tasks\{25DCCD1F-6B78-4178-A1D0-BBB60061D347} 2013-11-26 16:37 - 2013-11-26 18:38 - 00047064 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2013-11-26 15:20 - 2013-11-28 18:34 - 00002017 _____ C:\Users\Public\Desktop\Avast.lnk 2013-11-26 13:58 - 2013-12-03 19:30 - 00000000 ____D C:\Users\Public\WinTV 2013-11-26 13:58 - 2013-12-03 19:29 - 00000000 ____D C:\Program Files (x86)\WinTV 2013-11-26 13:58 - 2013-11-28 10:20 - 00000000 ____D C:\ProgramData\Hauppauge 2013-11-26 13:53 - 2013-12-01 19:02 - 00774248 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-11-26 13:48 - 2013-12-03 19:28 - 00000000 ____D C:\Hauppauge 2013-11-26 12:45 - 2013-11-28 12:12 - 00002778 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-11-25 23:28 - 2013-11-25 23:28 - 00000000 ____D C:\_OTL 2013-11-25 22:58 - 2013-11-25 22:58 - 00000000 ____D C:\Windows\Tasks\TaskDisabled 2013-11-23 15:11 - 2013-11-23 15:11 - 00000000 _____ C:\autoexec.bat 2013-11-23 15:10 - 2013-11-27 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-11-22 16:51 - 2013-12-03 19:30 - 00000401 _____ C:\Windows\ODBCINST.INI 2013-11-22 16:51 - 2013-12-03 19:30 - 00000135 _____ C:\Windows\ODBC.INI 2013-11-22 16:51 - 2013-12-03 19:29 - 00037639 _____ C:\Windows\Irremote.ini 2013-11-22 16:51 - 2013-12-03 19:29 - 00002767 _____ C:\Windows\HCWPNP.INI 2013-11-22 16:51 - 2013-05-03 13:37 - 00118840 _____ (Hauppauge Computer Works, Inc.) C:\Windows\SysWOW64\hcwi2c32.dll 2013-11-22 16:51 - 2012-06-14 20:30 - 00323640 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwpnp32.dll 2013-11-22 16:51 - 2009-08-12 10:37 - 00038672 _____ (PCTV Systems S.à r.l.) C:\Windows\SysWOW64\pcleUtil.dll 2013-11-22 16:51 - 2009-02-16 23:09 - 00831554 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwtvwnd.dll 2013-11-22 16:51 - 2009-01-28 10:52 - 00142337 _____ C:\Windows\SysWOW64\Wait.exe 2013-11-22 16:51 - 2008-06-30 10:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2013-11-22 16:51 - 2008-06-30 10:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2013-11-22 16:51 - 2006-10-10 18:47 - 00036921 _____ (Hauppauge Computer Works) C:\Windows\SysWOW64\hcwutl32.dll 2013-11-22 16:48 - 2010-09-19 23:28 - 00912896 _____ (Hauppauge Computer Works, Inc) C:\Windows\system32\Drivers\hcw18bda.sys 2013-11-22 16:48 - 2010-09-19 23:28 - 00139264 _____ (Hauppauge Computer Works) C:\Windows\system32\hcw18prop.ax 2013-11-22 16:48 - 2010-09-19 23:28 - 00117248 _____ (Hauppauge Computer Works, Inc.) C:\Windows\system32\hcw18CCv.ax 2013-11-22 12:32 - 2013-11-22 12:42 - 00000000 ____D C:\ProgramData\HitmanPro 2013-11-22 10:51 - 2013-11-22 10:51 - 00000000 ____D C:\Windows\ERUNT 2013-11-22 10:39 - 2013-12-02 12:22 - 00000000 ____D C:\AdwCleaner 2013-11-22 10:07 - 2013-11-22 10:07 - 00001242 _____ C:\Users\Folders\Desktop\Uninstaller.lnk 2013-11-21 21:43 - 2013-11-21 21:43 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp 2013-11-21 21:43 - 2013-11-21 21:43 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp 2013-11-21 20:56 - 2013-11-24 18:45 - 00003260 _____ C:\Windows\System32\Tasks\{AF3227B2-DADD-4423-B0DD-97A8C5037367} 2013-11-21 20:55 - 2013-11-22 10:06 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2013-11-21 20:22 - 2013-12-01 14:02 - 00000000 ____D C:\Users\Folders\AppData\Local\Adobe 2013-11-21 19:29 - 2013-11-21 19:29 - 00000000 ____D C:\Users\Folders\AppData\Roaming\eCyber 2013-11-21 14:10 - 2013-11-21 14:11 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Real 2013-11-21 14:08 - 2013-11-21 14:11 - 00000000 ____D C:\ProgramData\Real 2013-11-20 21:03 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Default\AppData\Roaming\Genie9 2013-11-20 21:03 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Genie9 2013-11-20 18:16 - 2013-11-20 18:17 - 00047270 _____ C:\Users\Folders\Documents\GENIE 9 STORAGE LICENSE.odt 2013-11-20 17:58 - 2013-11-28 18:29 - 00000000 ___RD C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp 2013-11-20 17:57 - 2013-12-02 11:40 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Genie9 2013-11-19 19:02 - 2013-12-03 22:23 - 00000000 ___RD C:\Users\Folders\Google Drive 2013-11-19 19:02 - 2013-11-19 19:02 - 00001705 _____ C:\Users\Folders\Desktop\Drive.lnk 2013-11-19 14:36 - 2013-11-21 20:43 - 00000000 ____D C:\Program Files (x86)\SoftMaker Viewer 2013-11-19 14:36 - 2013-11-19 14:36 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftMaker Viewer 2013-11-19 14:36 - 2009-06-05 03:33 - 00068640 _____ C:\Windows\unTMV.exe 2013-11-19 14:36 - 2009-03-23 00:41 - 00148473 _____ C:\Users\Folders\Documents\TextMaker Viewer.tmd 2013-11-18 19:25 - 2013-11-24 18:45 - 00003172 _____ C:\Windows\System32\Tasks\SmartDefrag_Startup 2013-11-18 19:25 - 2013-11-24 18:45 - 00003170 _____ C:\Windows\System32\Tasks\SmartDefragUpdate 2013-11-18 19:25 - 2013-05-22 18:49 - 00032600 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe 2013-11-17 14:51 - 2013-11-17 14:51 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-11-17 14:51 - 2013-11-17 14:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-11-17 14:36 - 2013-11-19 14:31 - 00000000 ____D C:\Users\Folders\Documents\AA QWEST 2013-11-17 14:36 - 2013-11-19 14:30 - 00000000 ____D C:\Users\Folders\Documents\PASSWORDS 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\WAB 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\VERIZON 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\TAXES 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\RES REF 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\PROP TAX 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\OLD EMAILS 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\OLD APT 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\LICENSES 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\EMAILS 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\EMAIL ADDRESSES 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\DOGS 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\DISPUTES 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\Booknizer 2013-11-17 14:36 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\APARTMENTS 2013-11-17 14:36 - 2012-09-04 11:24 - 00367716 _____ C:\Users\Folders\Documents\IDMSettings.txt 2013-11-17 14:36 - 2011-10-03 13:01 - 00004901 _____ C:\Users\Folders\Documents\MICROSOFT PHONES.odt 2013-11-17 14:36 - 2011-09-07 16:24 - 00000152 _____ C:\Users\Folders\Documents\Network Security Settings.txt 2013-11-17 14:36 - 2011-08-03 22:15 - 00012754 _____ C:\Users\Folders\Documents\TEEN SUBSCRIBE.odt 2013-11-17 14:36 - 2011-07-27 18:06 - 00009354 _____ C:\Users\Folders\Documents\internet probs.odt 2013-11-17 14:36 - 2011-07-23 11:15 - 01740859 _____ C:\Users\Folders\Documents\CLEAR ONE & MEDICARE.odt 2013-11-17 14:36 - 2011-07-20 17:09 - 00018727 _____ C:\Users\Folders\Documents\PRESBYTERIAN THANK YOU.odt 2013-11-17 14:36 - 2011-07-19 11:12 - 00026513 _____ C:\Users\Folders\Documents\PROPERTY TAX APPEAL.odt 2013-11-17 14:36 - 2011-07-17 13:07 - 00019682 _____ C:\Users\Folders\Documents\HOME DEPOT COMPLAINT.odt 2013-11-17 14:36 - 2011-06-23 13:32 - 00014669 _____ C:\Users\Folders\Documents\Speeding Ticket.odt 2013-11-17 14:36 - 2011-06-23 13:32 - 00014669 _____ C:\Users\Folders\Documents\OSP TKT.odt 2013-11-17 14:36 - 2011-06-09 15:20 - 00019794 _____ C:\Users\Folders\Documents\House Paint Request.odt 2013-11-17 14:36 - 2011-06-09 15:20 - 00019794 _____ C:\Users\Folders\Documents\HOUSE PAINT JOB.odt 2013-11-17 14:36 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\Barking Dog Response.odt 2013-11-17 14:36 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\Barking Dog 3.odt 2013-11-17 14:36 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\Barking Dogs Neighbors.odt 2013-11-17 14:36 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\Barking Dog 1.odt 2013-11-17 14:36 - 2011-05-09 17:14 - 00020936 _____ C:\Users\Folders\Documents\ONPOINT CANCELLED.odt 2013-11-17 14:36 - 2011-05-09 17:14 - 00020936 _____ C:\Users\Folders\Documents\OnPoint Cancel.odt 2013-11-17 14:36 - 2011-05-05 09:31 - 00009927 _____ C:\Users\Folders\Documents\Nettalk.odt 2013-11-17 14:36 - 2011-04-24 12:02 - 00016529 _____ C:\Users\Folders\Documents\Faucets.odt 2013-11-17 14:36 - 2011-04-23 11:44 - 00014948 _____ C:\Users\Folders\Documents\Equifax Request.odt 2013-11-17 14:36 - 2011-04-23 11:44 - 00014948 _____ C:\Users\Folders\Documents\EQUIFAX COMPLAINT.odt 2013-11-17 14:36 - 2011-04-16 12:10 - 00009926 _____ C:\Users\Folders\Documents\PHONE ALAN.odt 2013-11-17 14:36 - 2011-04-10 14:58 - 00008913 _____ C:\Users\Folders\Documents\PICTUREMERGE.odt 2013-11-17 14:36 - 2011-04-10 14:58 - 00008913 _____ C:\Users\Folders\Documents\PASSWORD PICTUREMERGE.odt 2013-11-17 14:36 - 2011-04-04 09:52 - 00010100 _____ C:\Users\Folders\Documents\PASSWORD MS CLEANER.odt 2013-11-17 14:36 - 2011-04-04 09:52 - 00010100 _____ C:\Users\Folders\Documents\MS Cleaner New.odt 2013-11-17 14:36 - 2011-02-24 21:52 - 00018206 _____ C:\Users\Folders\Documents\MAIL PROBLEM.odt 2013-11-17 14:36 - 2011-02-24 21:52 - 00018206 _____ C:\Users\Folders\Documents\EMAIL PROBLEM.odt 2013-11-17 14:36 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\BARKING DOGS.odt 2013-11-17 14:36 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\Barking Dog Law.odt 2013-11-17 14:36 - 2011-02-09 10:48 - 00014952 _____ C:\Users\Folders\Documents\PASSWORDS 2011.odt 2013-11-17 14:36 - 2011-02-09 10:48 - 00014952 _____ C:\Users\Folders\Documents\A PSWRDS.odt 2013-11-17 14:36 - 2011-02-08 15:28 - 01391878 _____ C:\Users\Folders\Documents\Untitled 1.odt 2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\PASSWORD HCTC.odt 2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\HCTC PASSWORD.odt 2013-11-17 14:36 - 2011-02-07 16:39 - 00008774 _____ C:\Users\Folders\Documents\HCTC ACCOUNT.odt 2013-11-17 14:36 - 2011-02-05 14:06 - 00009133 _____ C:\Users\Folders\Documents\LOCO F7 GRILL PAINT.odt 2013-11-17 14:36 - 2011-02-05 14:06 - 00009133 _____ C:\Users\Folders\Documents\F7 GRILL PAINT.odt 2013-11-17 14:36 - 2011-02-05 14:05 - 00009332 _____ C:\Users\Folders\Documents\PASSWORD WIN7.odt 2013-11-17 14:36 - 2011-02-05 13:57 - 00010733 _____ C:\Users\Folders\Documents\PASSWORD MS COMPUTER.odt 2013-11-17 14:36 - 2011-01-17 14:02 - 00000145 _____ C:\Users\Folders\Documents\indexfile.txt 2013-11-17 14:36 - 2007-12-23 15:31 - 00016384 _____ C:\Users\Folders\Documents\CAM FORMAT.wps 2013-11-17 14:36 - 2007-11-01 13:14 - 00013312 _____ C:\Users\Folders\Documents\BEND APT 5.wps 2013-11-17 14:36 - 2007-11-01 13:04 - 00011776 _____ C:\Users\Folders\Documents\BEND APT 4.wps 2013-11-17 14:36 - 2007-11-01 12:37 - 00012800 _____ C:\Users\Folders\Documents\BEND APT 3.wps 2013-11-17 14:32 - 2013-11-21 20:43 - 00000000 ____D C:\Users\Folders\Documents\SoftMaker 2013-11-17 14:32 - 2013-11-17 14:36 - 00000000 ____D C:\Users\Folders\Documents\LICENSES PASSWORDS 2013-11-17 14:32 - 2013-11-17 14:32 - 00000000 ____D C:\Users\Folders\Documents\BEND APT 2013-11-17 14:32 - 2012-02-07 19:54 - 00004534 _____ C:\Users\Folders\Documents\NETTALK CONTACT.odt 2013-11-17 14:32 - 2011-11-18 13:52 - 00004854 _____ C:\Users\Folders\Documents\ALAN DOUGLASS.odt 2013-11-17 14:32 - 2011-09-07 16:24 - 00000152 _____ C:\Users\Folders\Documents\NETWORK PASSWORD.txt 2013-11-17 14:32 - 2011-07-19 11:32 - 00015307 _____ C:\Users\Folders\Documents\PROPERTY TAX WHISNET.odt 2013-11-17 14:32 - 2011-07-19 11:12 - 00026513 _____ C:\Users\Folders\Documents\PROP TAX DEFERRAL.odt 2013-11-17 14:32 - 2011-05-14 12:53 - 00023220 _____ C:\Users\Folders\Documents\BARK DOG 3.odt 2013-11-17 14:32 - 2011-05-12 18:14 - 00020283 _____ C:\Users\Folders\Documents\BARK DOG 1.odt 2013-11-17 14:32 - 2011-04-16 12:10 - 00009926 _____ C:\Users\Folders\Documents\PHONES ALAN.odt 2013-11-17 14:32 - 2011-02-11 16:29 - 01172263 _____ C:\Users\Folders\Documents\BARK LAW.odt 2013-11-17 14:32 - 2011-02-05 14:08 - 00010374 _____ C:\Users\Folders\Documents\HOUSE PAINTS.odt 2013-11-17 14:32 - 2011-02-05 14:03 - 00011368 _____ C:\Users\Folders\Documents\VERIZON MODEM.odt 2013-11-17 14:32 - 2011-02-05 13:54 - 00010142 _____ C:\Users\Folders\Documents\PHONES MICROSOFT.odt 2013-11-17 14:32 - 2011-01-14 16:12 - 00009216 _____ C:\Users\Folders\Documents\Untitled Document.wps 2013-11-17 14:32 - 2009-01-29 14:24 - 00010752 _____ C:\Users\Folders\Documents\RES 3.wps 2013-11-17 14:32 - 2009-01-21 13:05 - 00001769 _____ C:\Users\Folders\Documents\REF ATT.txt 2013-11-17 14:32 - 2009-01-14 16:20 - 00012800 _____ C:\Users\Folders\Documents\RES 1.wps 2013-11-17 14:32 - 2008-08-13 18:53 - 00010240 _____ C:\Users\Folders\Documents\RES 4.wps 2013-11-17 13:32 - 2013-11-17 13:38 - 00000195 _____ C:\Users\Folders\Desktop\Calendar.url 2013-11-16 15:23 - 2013-11-16 19:25 - 00000000 ____D C:\Program Files\Media Preview 2013-11-16 15:23 - 2013-11-16 15:23 - 00000000 ____D C:\Program Files (x86)\Media Preview 2013-11-16 12:59 - 2013-11-24 16:20 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Foxit Software 2013-11-16 12:59 - 2013-11-16 12:59 - 00000000 ____D C:\Program Files (x86)\Foxit Software 2013-11-16 12:52 - 2013-11-16 12:53 - 00009555 _____ C:\Users\Folders\Documents\A ISA.odt 2013-11-16 12:41 - 2013-11-16 12:47 - 03911164 _____ C:\Users\Folders\Documents\CENTURYLINK ACTIONTEC.tif 2013-11-16 12:32 - 2013-11-16 14:06 - 00014336 ____H C:\Users\Folders\Documents\photothumb.db 2013-11-15 21:01 - 2013-11-17 13:45 - 00001042 _____ C:\Users\Folders\Desktop\PhotoScape.lnk 2013-11-15 21:01 - 2013-11-15 21:03 - 00000000 ____D C:\Users\Folders\AppData\Roaming\PhotoScape 2013-11-15 21:01 - 2013-11-15 21:02 - 00000000 ____D C:\Program Files (x86)\PhotoScape 2013-11-15 18:36 - 2013-11-15 18:36 - 00000912 _____ C:\Windows\SysWOW64\MY_STYLE.STY 2013-11-15 18:29 - 2013-12-01 16:10 - 00000000 ____D C:\Users\Folders\AppData\Local\CrashDumps 2013-11-15 14:10 - 2013-11-15 14:10 - 54390784 _____ C:\Windows\system32\config\SOFTWARE.iobit 2013-11-15 14:10 - 2013-11-15 14:10 - 45219840 _____ C:\Windows\system32\config\COMPONENTS.iobit 2013-11-15 14:10 - 2013-11-15 14:10 - 00913408 _____ C:\Windows\system32\config\DEFAULT.iobit 2013-11-15 14:10 - 2013-11-15 14:10 - 00061440 _____ C:\Windows\system32\config\SAM.iobit 2013-11-15 14:10 - 2013-11-15 14:10 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit 2013-11-15 13:29 - 2013-11-15 13:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A} 2013-11-15 13:01 - 2013-11-15 13:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-14 21:35 - 2013-11-16 12:14 - 00000000 ____D C:\Users\Folders\AppData\Local\Qwest 2013-11-14 15:05 - 2013-11-14 15:05 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0 2013-11-14 13:23 - 2013-04-16 23:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-11-14 13:23 - 2013-04-16 22:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-11-14 13:22 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-11-14 13:22 - 2013-04-02 14:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-11-13 18:49 - 2013-10-16 10:18 - 00439296 _____ (Adpeak, Inc.) C:\Windows\system32\AdpeakProxy64.dll 2013-11-13 18:49 - 2013-10-16 10:18 - 00338944 _____ (Adpeak, Inc.) C:\Windows\SysWOW64\AdpeakProxy.dll 2013-11-13 18:11 - 2013-12-02 14:32 - 00000000 ____D C:\Users\Folders\AppData\Roaming\vlc 2013-11-13 18:09 - 2013-11-13 18:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-11-13 17:34 - 2013-11-13 17:34 - 00002219 _____ C:\Users\Public\Desktop\Earth.lnk 2013-11-13 17:26 - 2013-11-17 13:42 - 00001212 _____ C:\Users\Folders\Desktop\Creator.lnk 2013-11-13 17:26 - 2013-05-27 17:48 - 01005928 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Windows\SysWOW64\libeay32.dll 2013-11-13 17:26 - 2011-02-17 14:37 - 00974848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll 2013-11-13 17:26 - 2011-02-17 14:37 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll 2013-11-13 17:26 - 2011-02-17 14:37 - 00344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll 2013-11-13 17:21 - 2013-11-13 17:21 - 00001755 _____ C:\Users\Folders\Desktop\Yard.lnk 2013-11-13 17:20 - 2013-11-15 20:12 - 00000000 ____D C:\Users\Folders\AppData\Roaming\AVS4YOU 2013-11-13 17:20 - 2013-11-13 17:26 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2013-11-13 17:19 - 2013-11-13 17:21 - 00001248 _____ C:\Users\Folders\Desktop\Converter.lnk 2013-11-13 17:19 - 2013-11-13 17:21 - 00001212 _____ C:\Users\Folders\Desktop\Editor.lnk 2013-11-13 17:19 - 2013-11-13 17:20 - 00000000 ____D C:\ProgramData\AVS4YOU 2013-11-13 17:18 - 2013-11-13 17:26 - 00000000 ____D C:\Program Files (x86)\AVS4YOU 2013-11-13 17:18 - 2011-06-23 13:26 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2013-11-13 17:18 - 2011-06-23 13:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2013-11-13 17:08 - 2013-12-03 22:31 - 00000000 ____D C:\Users\Folders\AppData\Roaming\IDM 2013-11-13 17:08 - 2013-12-03 19:39 - 00000000 ____D C:\Users\Folders\Downloads\Video 2013-11-13 17:08 - 2013-12-03 19:39 - 00000000 ____D C:\Users\Folders\Downloads\Compressed 2013-11-13 17:08 - 2013-12-03 17:58 - 00000000 ____D C:\Users\Folders\AppData\Roaming\DMCache 2013-11-13 17:08 - 2013-11-21 20:43 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager 2013-11-13 17:08 - 2013-11-21 20:43 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager 2013-11-13 17:08 - 2013-11-17 13:44 - 00001020 _____ C:\Users\Folders\Desktop\Downloader.lnk 2013-11-13 17:08 - 2013-11-13 17:08 - 00000000 ____D C:\ProgramData\IDM 2013-11-13 16:52 - 2013-11-17 13:43 - 00001181 _____ C:\Users\Public\Desktop\Defrag.lnk 2013-11-13 16:52 - 2013-05-22 18:49 - 00017720 _____ C:\Windows\system32\Drivers\SmartDefragDriver.sys 2013-11-13 16:24 - 2013-11-16 12:15 - 00013218 _____ C:\Users\Folders\Documents\CENTURYLINK VAULT.odt 2013-11-13 16:18 - 2013-11-13 16:18 - 00000000 ____D C:\Users\Folders\AppData\Roaming\OpenOffice 2013-11-13 16:15 - 2013-11-17 13:44 - 00002293 _____ C:\Users\Public\Desktop\Vault.lnk 2013-11-13 16:14 - 2013-11-13 16:14 - 00000000 ____D C:\Program Files (x86)\CenturyLink Personal Digital Vault 2013-11-13 14:37 - 2013-11-20 14:59 - 00000000 ____D C:\Users\Folders\Norton Zone 2013-11-13 14:37 - 2013-11-15 09:59 - 00000000 ____D C:\Windows\System32\Tasks\Norton Zone 2013-11-13 14:36 - 2013-11-21 20:43 - 00000000 ____D C:\ProgramData\Norton 2013-11-13 14:36 - 2013-11-15 09:52 - 00000000 ____D C:\Windows\system32\Drivers\NZx64 2013-11-13 14:36 - 2013-11-13 14:36 - 00000000 ____D C:\Program Files (x86)\Norton Zone 2013-11-13 14:33 - 2013-11-13 14:33 - 00000000 ____D C:\Windows\Downloaded Installations 2013-11-13 14:24 - 2013-11-15 16:45 - 00000000 ____D C:\Users\Folders\AppData\Local\Plex 2013-11-13 14:23 - 2013-11-13 14:23 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plex Media Center 2013-11-13 14:23 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-11-13 14:23 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-11-13 13:40 - 2013-11-15 17:29 - 00000000 ____D C:\Users\Folders\AppData\Local\Plex Media Server 2013-11-13 13:40 - 2013-11-13 13:40 - 00000000 ____D C:\Users\Folders\AppData\Local\Apple Computer 2013-11-13 13:39 - 2013-12-03 19:30 - 00000000 ____D C:\ProgramData\Package Cache 2013-11-13 13:39 - 2013-11-13 14:22 - 00000000 ____D C:\Program Files (x86)\Plex 2013-11-13 12:40 - 2013-11-13 12:40 - 00000000 __SHD C:\found.000 2013-11-13 11:43 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-11-13 11:39 - 2013-11-13 11:39 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-11-13 11:39 - 2013-11-13 11:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-13 11:39 - 2013-11-13 11:39 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-11-13 11:39 - 2013-11-13 11:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-11-13 11:39 - 2013-11-13 11:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-11-13 11:39 - 2013-11-13 11:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-11-13 11:39 - 2013-11-13 11:39 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-11-13 11:39 - 2013-11-13 11:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-11-13 11:39 - 2013-11-13 11:39 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-11-13 11:39 - 2013-11-13 11:39 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-11-13 11:39 - 2013-11-13 11:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-11-13 11:39 - 2013-11-13 11:39 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-11-13 11:39 - 2013-11-13 11:39 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-11-13 11:37 - 2013-10-01 18:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2013-11-13 11:37 - 2013-10-01 18:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2013-11-13 11:37 - 2013-10-01 18:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2013-11-13 11:37 - 2013-10-01 17:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2013-11-13 11:37 - 2013-10-01 17:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2013-11-13 11:37 - 2013-10-01 17:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-11-13 11:37 - 2013-10-01 17:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2013-11-13 11:37 - 2013-10-01 16:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2013-11-13 11:37 - 2013-10-01 16:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2013-11-13 11:37 - 2013-10-01 16:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2013-11-13 11:37 - 2013-10-01 16:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2013-11-13 11:37 - 2013-10-01 16:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2013-11-13 11:37 - 2013-10-01 15:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-11-13 11:37 - 2013-10-01 15:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2013-11-13 11:37 - 2013-10-01 15:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2013-11-13 11:37 - 2013-10-01 14:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2013-11-13 11:37 - 2013-10-01 12:57 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-11-13 11:37 - 2013-10-01 12:55 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-11-13 11:28 - 2013-01-13 11:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-11-13 11:28 - 2013-01-13 11:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-11-13 11:28 - 2013-01-13 11:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-11-13 11:28 - 2013-01-03 22:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-11-13 11:28 - 2013-01-03 22:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-11-13 11:27 - 2013-01-13 13:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 13:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-11-13 11:27 - 2013-01-13 12:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-11-13 11:27 - 2013-01-13 12:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-11-13 11:27 - 2013-01-13 12:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-11-13 11:27 - 2013-01-13 12:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-11-13 11:27 - 2013-01-13 11:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-11-13 11:27 - 2013-01-13 11:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-11-13 11:27 - 2013-01-13 11:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-11-13 11:27 - 2013-01-13 11:51 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-11-13 11:27 - 2013-01-13 11:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-11-13 11:27 - 2013-01-13 11:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-11-13 11:27 - 2013-01-13 11:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-11-13 11:27 - 2013-01-13 11:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-11-13 11:27 - 2013-01-13 11:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-11-13 11:27 - 2013-01-13 11:37 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-11-13 11:27 - 2013-01-13 11:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-11-13 11:27 - 2013-01-13 11:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-11-13 11:27 - 2013-01-13 11:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-11-13 11:27 - 2013-01-13 11:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-11-13 11:27 - 2013-01-13 11:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-11-13 11:27 - 2013-01-13 10:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-11-13 11:27 - 2013-01-13 10:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-11-13 11:27 - 2013-01-13 10:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-11-13 11:27 - 2013-01-13 09:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-11-13 11:27 - 2013-01-13 09:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-11-13 11:22 - 2013-09-24 18:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2013-11-13 11:22 - 2013-09-24 17:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2013-11-12 23:55 - 2013-11-17 13:39 - 00002266 _____ C:\Users\Public\Desktop\Mail.lnk 2013-11-12 23:34 - 2013-12-03 18:00 - 57389056 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2013-11-12 23:34 - 2013-12-03 17:59 - 45219840 _____ C:\Windows\system32\config\COMPONENTS.iodefrag.bak 2013-11-12 23:34 - 2013-12-03 17:59 - 00946176 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2013-11-12 23:34 - 2013-12-03 17:59 - 00061440 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2013-11-12 23:34 - 2013-12-03 17:59 - 00032768 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2013-11-12 23:15 - 2013-11-12 23:15 - 00000000 ____D C:\Users\Folders\AppData\Roaming\Malwarebytes 2013-11-12 23:14 - 2013-11-17 13:41 - 00001184 _____ C:\Users\Public\Desktop\Malware.lnk 2013-11-12 23:14 - 2013-11-12 23:15 - 00001120 _____ C:\Users\Public\Desktop\Malbytes.lnk 2013-11-12 23:14 - 2013-11-12 23:14 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-12 23:14 - 2013-11-12 23:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-11-12 23:14 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-11-12 20:06 - 2013-11-12 20:06 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-11-12 20:06 - 2013-11-12 20:06 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-11-12 20:06 - 2013-11-12 20:06 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-11-12 20:06 - 2013-11-12 20:06 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-11-12 20:06 - 2013-11-12 20:06 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-11-12 20:06 - 2013-11-12 20:06 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-11-12 20:03 - 2013-11-12 20:03 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-12 20:03 - 2013-11-12 20:03 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-11-12 20:02 - 2013-11-12 20:02 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-12 20:02 - 2013-11-12 20:02 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-11-12 20:01 - 2013-11-12 20:01 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-11-12 20:01 - 2013-11-12 20:01 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-11-12 20:01 - 2013-11-12 20:01 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-11-12 20:01 - 2013-11-12 20:01 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-11-12 20:01 - 2013-11-12 20:01 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-11-12 20:01 - 2013-11-12 20:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-11-12 20:00 - 2013-11-12 20:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-12 20:00 - 2013-11-12 20:00 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-12 20:00 - 2013-11-12 20:00 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-11-12 20:00 - 2013-11-12 20:00 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-12 20:00 - 2013-11-12 20:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-11-12 19:59 - 2013-11-12 19:59 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-11-12 19:59 - 2013-11-12 19:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-11-12 19:59 - 2013-11-12 19:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-11-12 19:59 - 2013-11-12 19:59 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-11-12 19:58 - 2013-11-12 19:58 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2013-11-12 19:58 - 2013-11-12 19:58 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2013-11-12 19:58 - 2013-11-12 19:58 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2013-11-12 19:58 - 2013-11-12 19:58 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2013-11-12 19:58 - 2013-11-12 19:58 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-11-12 19:57 - 2013-11-12 19:57 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-11-12 19:57 - 2013-11-12 19:57 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-11-12 19:57 - 2013-11-12 19:57 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-11-12 19:57 - 2013-11-12 19:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-11-12 19:57 - 2013-11-12 19:57 - 00007680 _____ (Micros [/QUOTE]
Insert quotes…
Verification
Post reply
Top